Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Not applicable

Firewall blocks network drives

Hi All, I' m having a problem with Forticlient 3.0.142. Basically, when a user VPNs in they are unable to access any network drive unless they set the firewall to Pass All. Once the firewall is disabled the network drives are accessible. If the firewall is then set back to Normal then network drives can still be accessed, until the machine is rebooted. This is not a 1 off, I believe that every laptop we have running version 3.0.142 on has this issue here. I have added our LAN into the trusted zone of the firewall but this has not resolved the problem. We did not experience this with version 2. Any ideas anyone? Thanks, Martin.
5 REPLIES 5
vanc
New Contributor II

Firewall will block all network share requests for public zone. So you need to add your network drive IP to the trusted zone.
Not applicable

I added the subnet of our LAN into the trusted zone, the IP address of the server hosting the share is on that subnet so the server should be trusted. If I drop the firewall and Pass All I can then access the server and shares on it, if I then set the firewall to Normal I can also then access the server and the shares on it. When I reboot though and the firewall is set to normal I can' t access the server and it' s shares, until I then drop the firewall (set it to pass all) and then set it again to normal. Generally I' m not impressed with v 3.0.142 of Forticlient, we also have lots of users experiencing problems with VPN Error Connection messages even though the VPN does not drop, does anyone know when the next release is due??!
Not applicable

Words of wisdom from Mr. Obvious, why wouldn' t you roll back to FC 2? There aren' t many new features on 3 from what I see. I' m assuming if it were that simple you wouldn' t ask. But, I figured I' d try.
vanc
New Contributor II

That should be a bug in FortiClient firewall. For the VPN warning dialog, it' s triggered by DPD (Dead Peer detection). You can unselect the option on the VPN connection page to disable the warning. (Keep IPSec service running forever)
Not applicable

We have rolled back to version 2 as it doesn' t have the Firewall issue that I mentioned. I guess we' ll wait for the next release to see if the bug is fixed. Thanks Vanc for the info re: DPD, I' ll try what you suggested...
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors